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DCI/ICS 85-4018 
4 February 1985 


MEMORANDUM FOR: See Distribution 
FROM: i 

SUBJECT: Request for Review of Draft NTISSI entitled "Guidelines for 

the Conduct of COMSEC Monitoring Activities" 


STAT 


1. Attached is a draft of a proposed National Telecommunications and 
Information Systems Security Instruction (NTISSI) No. 4000, entitled 
"Guidelines for the Conduct of Communications Security (COMSEC) Monitoring 
Activities" which has been distributed for review and comment prior to being 
forwarded to the Attorney General. Upon approval by the Attorney General, it 
is proposed that the NTISSI be issued by the National Manager. 

2. Based on my telephonic discussions with you on this matter, request 
your review and comments on the attached draft by COB 8 February 1985. A 
response signed by the NTISSC member is requested by 15 February 1985. I 
propose to consolidate your comments and draft a proposed DCI and D/CIA 
coordinated response by COB 11 February 1985. I propose to provide final 
staffing and coordination through you. 

3. The following are my initial thoughts on the draft based on my initial 
screening. Please provide comments on these areas: 

o Paragraph 1, References . Is this list comprehensive? What do 
these references say about COMSEC monitoring relative to the 
proposed draft? Since paragraph 3c generally addresses the 
DCI's responsibility in the TSCM area, shouldn't the references 
identify such documents? What other references should be 
included? 

0 Paragraph 5b under Policy specifies some very stringent 
notification procedures for monitoring contractor 
telecommunications including ". . . first obtaining the express 
written approval of the chief executive officer . . . and the 
written opinion of the general counsel of the department or 
agency which is conducting the monitoring. . . ." 
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0 Paragraphs 5f and 8b (2) address the Policy and Responsibilities 
related to COMSEC monitoring activities of government 
departments and agencies. Tbese paragraphs state a different 
Dolicv and responsibility for government monitoring activities 
than that for contractor facilities. Whereas the agency 
performing the monitoring of a contractor facility must 
" . . first obtain . . . the express written approval of the 

chief executive officer . . . ." There is no such 
for government departments or agencies (i.e., paragraph obUj 
states:. . .“no monitoring shall be performed without •''’"st 
providing timely notification of such monitoring to the heads of 
departments or agencies to be monitored"). Should the same 
approval policy apply to government departments and agencies as 
that stated for government contractors? If so, what rationale 
should be used to request this modification to the proposed 
NTISS? 

4. One additional area you might consider is paragraphed. Policy 
regarding procedures for the disposition of information derived fcom COMSEC 
monitoring activities which relate to a significant crime. The wording now 
indicates that such information derived from the monitoring of governmen t 
iel^cfmrunications is covered by this policy. Should the word government be 
deleted so that this policy covers all monitoring activities that are 
authorized under this proposed NTISS? 

5. Request your comments by COB 8 February 1 985. 


Attachment: a/s 


STAT 
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SUBJECT: 


Request for Review of Draft NTISSI entitled "Guidelines for 
the Conduct of COMSEC Monitoring Activities 


Distribution: 

Action: 

1 -C/IHC 
1 - C/SECOM 
1 - CIA/OC/CSD/PSG 
1 - CIA/OS/ ISSG 
1 - ICS/D/PPS 
1 - ICS/GC 


Information: 

1 - EO/ICS 
1 - EA/EXDIR/CIA 


STAT 
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V 

NTiSSC OFFICE OF THE EXECUTIVE SECRETARY pc 

MTISSC 6-/1 
18 January 1985 ^ 


MATWIUL 



I®® members of the national telecommunications and 

INFORMATION SYSTEMS SECURITY COMMITTEE AND 

SUBJECT: Draft National Telecommunications and Information 
Systems Security Instruction (NTISSI) No. 4000, 

^nau=t^o|_Co«.™ic.tions Security 

1. Enclosed is draft NTISSI No. 4000, subieet as above Th 

dated'rpeb?i«J^l?M®'^Ld"hr“K‘*°" subject; 

S,^*lP-yi|ion“s“S/L“t‘lonM ^Hun?? UTsllfl 

]ISA (S081) , 972-2509s/688-6130b: 


STAT 


STAT 


PP ax, tne NTISSI will be issued by the National Manager^ 


STAT 


X/Executive Secretary 


End: 

a/s 
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